Search CVE reports


Toggle filters

1 – 10 of 52 results


CVE-2023-2953

Low priority

Some fixes available 5 of 7

A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Not affected Fixed Fixed Fixed Fixed
Show less packages

CVE-2022-31253

Medium priority
Not affected

A Untrusted Search Path vulnerability in openldap2 of openSUSE Factory allows local attackers with control of the ldap user or group to change ownership of arbitrary directory entries to this user/group, leading to escalation to...

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Not affected Not affected Not affected Not affected
Show less packages

CVE-2022-29155

Medium priority
Fixed

In OpenLDAP 2.x before 2.5.12 and 2.6.x before 2.6.2, a SQL injection vulnerability exists in the experimental back-sql backend to slapd, via a SQL statement within an LDAP query. This can occur during an LDAP search operation...

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Fixed Fixed Fixed Fixed
Show less packages

CVE-2020-20178

Medium priority
Not affected

Ethereum 0xe933c0cd9784414d5f278c114904f5a84b396919#code.sol latest version is affected by a denial of service vulnerability in the affected payout function. Once the length of this array is too long, it will result in...

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Not affected Not affected Not affected Not affected
Show less packages

CVE-2021-27212

Medium priority

Some fixes available 12 of 13

In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha, an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet, resulting in a denial of service (daemon exit) via a short timestamp....

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2020-36230

Medium priority

Some fixes available 12 of 13

A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service.

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2020-36229

Medium priority

Some fixes available 12 of 13

A flaw was discovered in ldap_X509dn2bv in OpenLDAP before 2.4.57 leading to a slapd crash in the X.509 DN parsing in ad_keystring, resulting in denial of service.

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2020-36228

Medium priority

Some fixes available 12 of 13

An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Certificate List Exact Assertion processing, resulting in denial of service.

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2020-36227

Medium priority

Some fixes available 12 of 13

A flaw was discovered in OpenLDAP before 2.4.57 leading to an infinite loop in slapd with the cancel_extop Cancel operation, resulting in denial of service.

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Fixed Fixed Fixed Fixed Fixed
Show less packages

CVE-2020-36226

Medium priority

Some fixes available 12 of 13

A flaw was discovered in OpenLDAP before 2.4.57 leading to a memch->bv_len miscalculation and slapd crash in the saslAuthzTo processing, resulting in denial of service.

1 affected package

openldap

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
openldap Fixed Fixed Fixed Fixed Fixed
Show less packages